For Home

Virus Profile: Android/Zitmo.F

Threat Search
Print
   
Virus Profile information details
Risk Assessment: Home Low | Corporate Low
Date Discovered: 7/21/2011
Date Added: 8/8/2011
Origin: N/A
Length: N/A
Type: Trojan
Subtype: PDA Device
DAT Required: N/A
Removal Instructions
   
 
 
   

Description

Android/Zitmo.F is trojan that steals telephone number, device information and incoming SMS messages.

Indication of Infection

  • Posts telephone number, device information and incoming SMS message to local host.

Methods of Infection

This malware requires that the user intentionally install it upon the device. As always, users should never install unknown or un-trusted software. This is especially true for illegal software, such as cracked applications - they are a favorite vector for malware infection.
   

Virus Characteristics

Android/Zitmo.F pretends to the anti-virus software.

Android/Zitmo.F shows an activation key when its application is executed manually.

Android/Zitmo.F posts phone number, IMEI, IMSI and incoming SMS message to local host. As a result, sensitive information is not stolen.

If malware author changes the destination address from local host to the attacker's website, sensitive information will be stolen.